Vulnerability Details CVE-2007-0546
Toxiclab Shoutbox 1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for db.mdb.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 53.4%
CVSS Severity
CVSS v2 Score 7.8
Products affected by CVE-2007-0546
-
cpe:2.3:a:toxiclab:shoutbox:1